Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 10-02-2014 Ran by Ja (administrator) on JA-04A81E735F20 on 10-02-2014 21:05:29 Running from C:\Documents and Settings\Ja\Pulpit\CZYSZCZENIE_KOMPA Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe (ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Cherished Technololgy LIMITED) C:\Documents and Settings\All Users\Dane aplikacji\WPM\wprotectmanager.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastUI.exe (GIGABYTE Technology Co.,Ltd.) C:\Program Files\GIGABYTE\GIGABYTE OC_GURU II\OC_GURU.exe (Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe (Creative Technology Ltd.) C:\WINDOWS\system32\devldr32.exe (LogMeIn, Inc.) C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe () C:\WINDOWS\system32\PnkBstrA.exe () C:\Program Files\SecretSauce\updateSecretSauce.exe () C:\Program Files\SecretSauce\bin\utilSecretSauce.exe (LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win32.exe (TeamViewer GmbH) C:\Documents and Settings\Ja\Ustawienia lokalne\Temp\TeamViewer\Version8\TeamViewer.exe (TeamViewer GmbH) C:\Documents and Settings\Ja\Ustawienia lokalne\Temp\TeamViewer\Version8\tv_w32.exe (TeamViewer GmbH) C:\Documents and Settings\Ja\Ustawienia lokalne\Temp\TeamViewer\Version8\TeamViewer_Desktop.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [High Definition Audio Property Page Shortcut] - C:\WINDOWS\system32\HDAudPropShortcut.exe [61952 2004-03-17] (Windows (R) Server 2003 DDK provider) HKLM\...\Run: [Cmaudio] - RunDll32 cmicnfg.cpl,CMICtrlWnd HKLM\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software) HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2012-04-05] (Advanced Micro Devices, Inc.) HKLM\...\Run: [mobilegeni daemon] - C:\Program Files\Mobogenie\DaemonProcess.exe HKLM\...\Run: [4StoryPrePatch] - E:\4Story_PL\PrePatch.exe HKLM\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [3813712 2014-02-04] (LogMeIn Inc.) Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll (ATI Technologies Inc.) HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\Run: [SetDefaultMIDI] - MIDIDef.exe HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3673184 2013-07-03] (Disc Soft Ltd) HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\Run: [Spol] - http://www.toya.net.pl/~spol/site/index.htm HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\Run: [GG] - C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\GG\Application\gghub.exe [4009024 2013-09-02] (GG Network S.A.) HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\Run: [NextLive] - C:\WINDOWS\system32\rundll32.exe "C:\Documents and Settings\Ja\Dane aplikacji\newnext.me\nengine.dll",EntryPoint -m l HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\Run: [Facebook Update] - C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Facebook\Update\FacebookUpdate.exe [138096 2013-12-18] (Facebook Inc.) HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\Run: [EADM] - "D:\Origin\Origin.exe" -AutoStart HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\Run: [uTorrent] - C:\Documents and Settings\Ja\Dane aplikacji\uTorrent\uTorrent.exe [905296 2014-01-25] (BitTorrent Inc.) HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\MountPoints2: {191b45a6-97cd-11e2-bfce-0013d38e9bdc} - G:\AutoRun.exe HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\MountPoints2: {191b45a7-97cd-11e2-bfce-0013d38e9bdc} - G:\AutoRun.exe HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\MountPoints2: {191b45a9-97cd-11e2-bfce-0013d38e9bdc} - Nokia_Suite_webinstaller_ALL.exe HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\MountPoints2: {3c1bcf76-93bd-11e2-bfc4-0013d38e9bdc} - G:\AutoRun.exe HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\MountPoints2: {3c1bcf79-93bd-11e2-bfc4-0013d38e9bdc} - G:\AutoRun.exe HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\MountPoints2: {3c1bcf7b-93bd-11e2-bfc4-0013d38e9bdc} - G:\AutoRun.exe HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\MountPoints2: {3c1bcf7e-93bd-11e2-bfc4-0013d38e9bdc} - G:\AutoRun.exe HKU\S-1-5-21-343818398-1708537768-1801674531-1003\...\MountPoints2: {3c1bcf81-93bd-11e2-bfc4-0013d38e9bdc} - G:\AutoRun.exe Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\GIGABYTE OC_GURU.lnk ShortcutTarget: GIGABYTE OC_GURU.lnk -> C:\Program Files\GIGABYTE\GIGABYTE OC_GURU II\OC_GURU.exe (GIGABYTE Technology Co.,Ltd.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://aartemis.com/?type=hp&ts=1388240093&from=cor&uid=WDCXWD800BB-00FRA0_WD-WCAJD1279037 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://aartemis.com/?type=hp&ts=1388240093&from=cor&uid=WDCXWD800BB-00FRA0_WD-WCAJD1279037 SearchScopes: HKLM - DefaultScope value is missing. BHO: SaveSense - {71e129ff-6c2a-4984-818c-7e2c998b8d99} - C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\SaveSense\SaveSenseIE.dll (SaveSense) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_17-windows-i586.cab DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/static/updater/BP4FUpdater_1.0.96.0.cab DPF: {CAFEEFAC-0017-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_17-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_17-windows-i586.cab Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Chrome: ======= CHR HomePage: hxxp://aartemis.com/?type=hp&ts=1388240093&from=cor&uid=WDCXWD800BB-00FRA0_WD-WCAJD1279037 CHR Extension: (Apocalypse Thème) - C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ffkggadllfepecimcjlfhnfhkdoifkkm [2014-01-18] CHR Extension: (Google Wallet) - C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-30] CHR Extension: (Battlefield Play4Free) - C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2013-12-24] CHR HKLM\...\Chrome\Extension: [dbpebffoameokfhnaaedmefjncfboino] - C:\Program Files\SecretSauce\dbpebffoameokfhnaaedmefjncfboino.crx [2014-02-10] CHR HKCU\...\Chrome\Extension: [iibmmjhgclhlahmjniokmhleigemjpbh] - C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\CRE\iibmmjhgclhlahmjniokmhleigemjpbh.crx [2014-02-10] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ========================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software) R2 Hamachi2Svc; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1677648 2014-02-04] (LogMeIn Inc.) S4 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182184 2013-09-02] (Oracle Corporation) R2 LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [375056 2014-02-04] (LogMeIn, Inc.) S3 npggsvc; C:\WINDOWS\system32\GameMon.des [4600264 2013-11-05] (INCA Internet Co., Ltd.) R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76888 2014-01-16] () S4 PuranDefrag; C:\WINDOWS\system32\PuranDefragS.exe [260992 2013-01-17] (Puran Software) S2 savesenselive; C:\Program Files\SaveSenseLive\Update\SaveSenseLive.exe [146920 2014-02-06] (SaveSense) S3 savesenselivem; C:\Program Files\SaveSenseLive\Update\SaveSenseLive.exe [146920 2014-02-06] (SaveSense) R2 Update SecretSauce; C:\Program Files\SecretSauce\updateSecretSauce.exe [80160 2014-02-05] () R2 Util SecretSauce; C:\Program Files\SecretSauce\bin\utilSecretSauce.exe [80160 2014-02-05] () R2 Wpm; C:\Documents and Settings\All Users\Dane aplikacji\WPM\wprotectmanager.exe [499856 2013-12-28] (Cherished Technololgy LIMITED) S4 SkypeUpdate; "C:\Program Files\Skype\Updater\Updater.exe" [X] ==================== Drivers (Whitelisted) ==================== R2 aswFsBlk; C:\WINDOWS\system32\Drivers\aswFsBlk.sys [29816 2013-05-09] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [66336 2013-05-09] (AVAST Software) R1 AswRdr; C:\WINDOWS\system32\Drivers\AswRdr.sys [49760 2013-05-09] (AVAST Software) R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49376 2013-05-09] () R1 aswSnx; C:\WINDOWS\system32\Drivers\aswSnx.sys [770344 2013-08-30] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\Drivers\aswSP.sys [369584 2013-08-30] (AVAST Software) R1 aswTdi; C:\WINDOWS\system32\Drivers\aswTdi.sys [56080 2013-05-09] (AVAST Software) R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [175176 2013-08-30] () R3 AtiHDAudioService; C:\WINDOWS\System32\drivers\AtihdXP3.sys [99856 2012-02-23] (Advanced Micro Devices) S3 cmudax; C:\WINDOWS\System32\drivers\cmudax.sys [1382912 2004-04-30] (C-Media Inc) R3 ctljystk; C:\WINDOWS\System32\DRIVERS\ctljystk.sys [3712 2001-08-17] (Creative Technology Ltd.) R3 CTUSFSYN; C:\WINDOWS\System32\drivers\ctusfsyn.sys [171008 2007-02-27] (Creative Technology Ltd.) R3 dtsoftbus01; C:\WINDOWS\System32\DRIVERS\dtsoftbus01.sys [243128 2013-07-23] (Disc Soft Ltd) R3 emu10k; C:\WINDOWS\System32\drivers\emu10k1m.sys [283904 2001-08-17] (Creative Technology Ltd.) R3 emu10k1; C:\WINDOWS\System32\drivers\ctlfacem.sys [6912 2001-08-17] (Creative Technology Ltd.) R3 FETND5BV; C:\WINDOWS\System32\DRIVERS\fetnd5bv.sys [43008 2005-06-21] (VIA Technologies, Inc. ) R3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-13] (Microsoft Corporation) S3 GiliDisc; C:\WINDOWS\System32\DRIVERS\GiliDisc.sys [18304 2013-01-23] (GiliSoft International LLC.) R3 GPCIDrv; C:\Program Files\GIGABYTE\GIGABYTE OC_GURU II\GPCIDrv.sys [14504 2010-02-04] () S3 hamachi; C:\WINDOWS\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.) S3 HdAudAddService; C:\WINDOWS\System32\drivers\HdAudio.sys [113664 2004-03-17] (Windows (R) Server 2003 DDK provider) R1 HWiNFO32; C:\WINDOWS\system32\drivers\HWiNFO32.SYS [22560 2013-08-30] (REALiX(tm)) S3 rtl8139; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [20992 2008-04-13] (Realtek Semiconductor Corporation) R3 sfman; C:\WINDOWS\System32\drivers\sfmanm.sys [36480 2001-08-17] (Creative Technology Ltd.) R0 Si3112; C:\WINDOWS\system32\Drivers\Si3112.sys [62336 2010-01-21] (Silicon Image, Inc.) S0 Si3114r5; C:\WINDOWS\system32\Drivers\Si3114r5.sys [195072 2010-01-21] (Silicon Image, Inc) R0 Si3124; C:\WINDOWS\system32\Drivers\Si3124.sys [69248 2010-01-21] (Silicon Image, Inc.) R0 Si3132; C:\WINDOWS\system32\Drivers\Si3132.sys [74672 2010-01-21] (Silicon Image, Inc.) R0 Si3132r5; C:\WINDOWS\system32\Drivers\Si3132r5.sys [215856 2010-01-21] (Silicon Image, Inc) R0 Si3531; C:\WINDOWS\system32\Drivers\Si3531.sys [212520 2010-01-21] (Silicon Image, Inc) R1 tnetfilter2; C:\WINDOWS\System32\drivers\tnetfilter2.sys [55360 2014-01-17] (NetFilterSDK.com) S3 EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys [X] S3 vtany; \??\C:\WINDOWS\vtany.sys [X] U1 WS2IFSL; S3 xhunter1; \??\C:\WINDOWS\xhunter1.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-10 21:04 - 2014-02-10 21:05 - 00000000 ____D () C:\FRST 2014-02-10 20:37 - 2014-02-10 20:37 - 00000000 ____D () C:\Program Files\TeamViewer 2014-02-10 19:56 - 2014-02-10 20:29 - 00000000 ____D () C:\AdwCleaner 2014-02-09 18:38 - 2014-02-09 18:38 - 00000048 _____ () C:\Documents and Settings\Ja\Pulpit\Google.url 2014-02-09 17:33 - 2013-11-29 15:24 - 00003561 _____ () C:\Documents and Settings\Ja\Pulpit\huzuni.json 2014-02-09 15:18 - 2014-01-25 14:45 - 06516528 _____ () C:\Documents and Settings\Ja\Pulpit\huzuni.jar 2014-02-09 10:18 - 2014-02-09 10:18 - 00000102 _____ () C:\Documents and Settings\Ja\Pulpit\Procesor AMD APU A10 5800K @4.2GHz +FARCRY3! (3959446976) - Allegro.pl - Więcej niż aukcje..url 2014-02-07 21:46 - 2014-02-09 00:46 - 00000068 _____ () C:\Documents and Settings\NetworkService\Dane aplikacji\WB.CFG 2014-02-06 22:15 - 2014-02-06 22:15 - 00003108 _____ () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\recently-used.xbel 2014-02-06 22:14 - 2014-02-06 22:14 - 02450541 _____ () C:\Documents and Settings\Ja\Pulpit\Bez nazwy.xcf 2014-02-06 22:14 - 2014-02-06 22:14 - 02450541 _____ () C:\Documents and Settings\Ja\Moje dokumenty\Bez nazwy.xcf 2014-02-06 22:14 - 2014-02-06 22:14 - 00000000 ____D () C:\Documents and Settings\Ja\.thumbnails 2014-02-06 22:12 - 2014-02-06 22:15 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\gtk-2.0 2014-02-06 21:51 - 2014-02-06 21:55 - 00000000 ____D () C:\Documents and Settings\Ja\.gimp-2.8 2014-02-06 21:51 - 2014-02-06 21:51 - 00000736 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\GIMP 2.lnk 2014-02-06 21:51 - 2014-02-06 21:51 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\gegl-0.2 2014-02-06 21:48 - 2014-02-06 21:51 - 00000000 ____D () C:\Program Files\GIMP 2 2014-02-06 21:47 - 2014-02-10 20:53 - 00000912 _____ () C:\WINDOWS\Tasks\SaveSenseLiveUpdateTaskMachineUA.job 2014-02-06 21:47 - 2014-02-10 20:43 - 00000908 _____ () C:\WINDOWS\Tasks\SaveSenseLiveUpdateTaskMachineCore.job 2014-02-06 21:46 - 2014-02-10 20:46 - 00000420 _____ () C:\WINDOWS\Tasks\At1.job 2014-02-06 21:46 - 2014-02-06 21:46 - 00000043 _____ () C:\Documents and Settings\Ja\Dane aplikacji\WB.CFG 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Program Files\SaveSenseLive 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\SaveSenseLive 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\SaveSense 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Documents and Settings\Ja\Menu Start\Programy\SaveSense 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Documents and Settings\Ja\Dane aplikacji\SaveSense 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\SaveSenseLive 2014-02-05 18:04 - 2014-02-05 18:04 - 00000202 _____ () C:\Documents and Settings\Ja\Pulpit\Warframe.url 2014-02-05 15:03 - 2014-02-05 15:03 - 00000000 ____D () C:\Program Files\LogMeIn Hamachi 2014-02-05 15:03 - 2014-02-05 15:03 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\LogMeIn Hamachi 2014-02-04 23:17 - 2014-02-04 23:17 - 00000000 ____D () C:\Program Files\Common Files\INCA Shared 2014-02-04 23:17 - 2013-11-05 20:51 - 04600264 _____ (INCA Internet Co., Ltd.) C:\WINDOWS\system32\GameMon.des 2014-02-04 23:17 - 2004-12-29 01:43 - 00004682 _____ (INCA Internet Co., Ltd.) C:\WINDOWS\system32\npptNT2.sys 2014-02-04 23:17 - 2003-07-14 10:17 - 00005174 _____ () C:\WINDOWS\system32\nppt9x.vxd 2014-02-03 22:03 - 2014-02-03 22:17 - 00000629 _____ () C:\Documents and Settings\Ja\Pulpit\Opis Akwarium.txt 2014-02-03 21:56 - 2014-02-03 22:14 - 00000124 _____ () C:\Documents and Settings\Ja\Pulpit\Akfarium.txt 2014-02-01 01:55 - 2014-02-01 01:55 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\EdgeOfReality 2014-02-01 01:24 - 2014-02-01 01:24 - 00000202 _____ () C:\Documents and Settings\Ja\Pulpit\Loadout.url 2014-01-27 23:58 - 2014-01-27 23:58 - 00001893 _____ () C:\Documents and Settings\All Users\Pulpit\Counter Strike 1.6 v23.1 [PL].lnk 2014-01-27 23:58 - 2014-01-27 23:58 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Counter Strike 1.6 v23.1 [PL] [Fps Booster] 2014-01-27 23:56 - 2014-01-28 15:46 - 00000000 ____D () C:\Program Files\Counter Strike 1.6 v23.1 [PL] [Fps Booster] 2014-01-25 13:49 - 2014-01-25 13:55 - 00000028 _____ () C:\Documents and Settings\Ja\Pulpit\Obliczenia.txt 2014-01-25 13:44 - 2014-01-25 13:44 - 00000157 _____ () C:\Documents and Settings\Ja\Pulpit\WD 1 TB, 64 MB, 7200 obr.-min, 3.5-, SATA3 - WD10EZEX - Dyski twarde do PC - SATA na Arest.pl.url 2014-01-25 13:36 - 2014-01-25 13:36 - 00000145 _____ () C:\Documents and Settings\Ja\Pulpit\DDR3 KINGSTON - 2 GB - 1600, CL9, HyperX Blu. - Pamięci RAM DDR 3 KINGSTON na Arest.pl.url 2014-01-25 13:25 - 2014-01-25 13:25 - 00000163 _____ () C:\Documents and Settings\Ja\Pulpit\MSI FM2-A75MA-E35 - m-ATX, A75, 2x DDR3, 1x PCI-E 16x, RAID, VGA, DVI, HDMI, S-FM2 - Płyty główne - AMD Socket FM2 na Arest.pl.url 2014-01-25 13:08 - 2014-01-25 13:08 - 00000107 _____ () C:\Documents and Settings\Ja\Pulpit\Procesor AMD APU A10 5800K @4.2GHz Łódź +FARCRY3! (3866867089) - Allegro.pl - Więcej niż aukcje..url 2014-01-20 23:01 - 2014-01-20 23:01 - 00000000 ____D () C:\Documents and Settings\Ja\Pulpit\Nowy folder (2) 2014-01-20 17:41 - 2014-01-17 09:16 - 00055360 _____ (NetFilterSDK.com) C:\WINDOWS\system32\Drivers\tnetfilter2.sys 2014-01-20 14:55 - 2013-12-22 12:51 - 00370688 _____ () C:\Documents and Settings\Ja\Pulpit\mss32.dll 2014-01-19 22:32 - 2014-01-19 22:32 - 00000363 _____ () C:\Documents and Settings\All Users\Pulpit\4Story.lnk 2014-01-19 22:32 - 2014-01-19 22:32 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\4Story_PL 2014-01-17 22:09 - 2014-01-17 22:09 - 00000000 ____D () C:\Documents and Settings\Ja\Dane aplikacji\0F1F1C2Y1H1P1C0I0T 2014-01-16 17:05 - 2014-01-17 22:38 - 00000000 ____D () C:\Documents and Settings\Ja\Menu Start\Programy\Ubisoft 2014-01-16 17:05 - 2014-01-16 17:05 - 00000332 _____ () C:\Documents and Settings\Ja\Pulpit\Ghost Recon Online (EU).appref-ms 2014-01-15 23:29 - 2014-01-15 23:29 - 00094208 _____ () C:\WINDOWS\Minidump\Mini011514-01.dmp 2014-01-15 18:28 - 2014-01-15 18:28 - 00000000 ____D () C:\Documents and Settings\Ja\Dane aplikacji\Kalydo 2014-01-14 21:27 - 2014-01-29 15:37 - 00000000 _____ () C:\dfu.log 2014-01-14 21:27 - 2014-01-14 21:27 - 00000565 _____ () C:\Documents and Settings\All Users\Pulpit\S.K.I.L.L. - Special Force 2.lnk 2014-01-14 21:26 - 2014-01-29 15:37 - 00000000 ____D () C:\Documents and Settings\Ja\Moje dokumenty\Gameforge Live 2014-01-14 21:26 - 2014-01-29 15:37 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Gameforge Live 2014-01-14 21:26 - 2014-01-14 21:26 - 00000404 _____ () C:\Documents and Settings\All Users\Pulpit\Gameforge Live.lnk 2014-01-14 21:26 - 2014-01-14 21:26 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Gameforge4d ==================== One Month Modified Files and Folders ======= 2014-02-10 21:05 - 2014-02-10 21:04 - 00000000 ____D () C:\FRST 2014-02-10 21:05 - 2013-08-29 20:46 - 00000000 ____D () C:\Documents and Settings\Ja\Pulpit\CZYSZCZENIE_KOMPA 2014-02-10 21:00 - 2013-01-23 12:29 - 00000000 ____D () C:\Documents and Settings\Ja\Pulpit 2014-02-10 20:53 - 2014-02-06 21:47 - 00000912 _____ () C:\WINDOWS\Tasks\SaveSenseLiveUpdateTaskMachineUA.job 2014-02-10 20:51 - 2013-07-19 17:45 - 00000000 ____D () C:\Documents and Settings\Ja\Dane aplikacji\uTorrent 2014-02-10 20:51 - 2013-02-27 19:21 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\LogMeIn Hamachi 2014-02-10 20:51 - 2013-01-29 11:02 - 00000000 ____D () C:\Documents and Settings\Ja\Dane aplikacji\TS3Client 2014-02-10 20:51 - 2013-01-28 11:48 - 00000000 ____D () C:\Documents and Settings\Ja\Dane aplikacji\GG 2014-02-10 20:50 - 2013-01-23 12:22 - 00399083 _____ () C:\WINDOWS\WindowsUpdate.log 2014-02-10 20:46 - 2014-02-06 21:46 - 00000420 _____ () C:\WINDOWS\Tasks\At1.job 2014-02-10 20:44 - 2013-12-14 10:11 - 00000000 ____D () C:\Documents and Settings\Ja\Dane aplikacji\newnext.me 2014-02-10 20:44 - 2013-08-30 12:15 - 00000356 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job 2014-02-10 20:44 - 2013-08-29 18:27 - 01512987 _____ () C:\WINDOWS\setupapi.log 2014-02-10 20:44 - 2013-02-27 19:21 - 00000000 ____D () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\LogMeIn Hamachi 2014-02-10 20:43 - 2014-02-06 21:47 - 00000908 _____ () C:\WINDOWS\Tasks\SaveSenseLiveUpdateTaskMachineCore.job 2014-02-10 20:43 - 2013-01-29 20:55 - 00001024 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-10 20:43 - 2013-01-23 13:14 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-02-10 20:43 - 2013-01-23 13:14 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-02-10 20:43 - 2013-01-23 12:28 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-02-10 20:42 - 2013-10-31 15:01 - 00524288 _____ () C:\WINDOWS\system32\config\ACEEvent.evt 2014-02-10 20:42 - 2013-01-23 12:29 - 00000188 ___SH () C:\Documents and Settings\Ja\ntuser.ini 2014-02-10 20:42 - 2013-01-23 12:28 - 00032364 _____ () C:\WINDOWS\SchedLgU.Txt 2014-02-10 20:37 - 2014-02-10 20:37 - 00000000 ____D () C:\Program Files\TeamViewer 2014-02-10 20:37 - 2013-01-23 13:11 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy 2014-02-10 20:37 - 2013-01-23 13:11 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-02-10 20:32 - 2013-12-19 22:59 - 00000000 ____D () C:\Program Files\SecretSauce 2014-02-10 20:29 - 2014-02-10 19:56 - 00000000 ____D () C:\AdwCleaner 2014-02-10 20:29 - 2013-01-23 13:11 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji 2014-02-10 20:29 - 2013-01-23 12:29 - 00000000 ___RD () C:\Documents and Settings\Ja\Menu Start\Programy 2014-02-10 20:29 - 2013-01-23 12:29 - 00000000 ___HD () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji 2014-02-10 20:07 - 2013-01-29 20:55 - 00001028 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-10 19:48 - 2013-02-24 12:17 - 00000456 ____H () C:\WINDOWS\Tasks\User_Feed_Synchronization-{32B19DDD-E025-432C-920C-8DA5F4C3CED3}.job 2014-02-10 16:32 - 2014-01-10 00:19 - 00282104 _____ () C:\WINDOWS\system32\PnkBstrB.exe 2014-02-10 16:32 - 2013-04-12 21:23 - 00282104 _____ () C:\WINDOWS\system32\PnkBstrB.xtr 2014-02-10 16:32 - 2013-04-12 21:21 - 00139424 _____ () C:\WINDOWS\system32\Drivers\PnkBstrK.sys 2014-02-10 16:27 - 2013-01-26 17:30 - 00000000 ____D () C:\Documents and Settings\Ja\Dane aplikacji\.minecraft 2014-02-10 15:08 - 2013-12-18 21:03 - 00000990 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-343818398-1708537768-1801674531-1003UA.job 2014-02-09 21:08 - 2013-12-18 21:03 - 00000968 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-343818398-1708537768-1801674531-1003Core.job 2014-02-09 18:38 - 2014-02-09 18:38 - 00000048 _____ () C:\Documents and Settings\Ja\Pulpit\Google.url 2014-02-09 17:29 - 2013-12-28 14:30 - 00003312 _____ () C:\Documents and Settings\Ja\Pulpit\1.7.4.json 2014-02-09 17:21 - 2013-04-26 14:57 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Warframe 2014-02-09 10:18 - 2014-02-09 10:18 - 00000102 _____ () C:\Documents and Settings\Ja\Pulpit\Procesor AMD APU A10 5800K @4.2GHz +FARCRY3! (3959446976) - Allegro.pl - Więcej niż aukcje..url 2014-02-09 00:46 - 2014-02-07 21:46 - 00000068 _____ () C:\Documents and Settings\NetworkService\Dane aplikacji\WB.CFG 2014-02-08 10:48 - 2013-01-28 11:48 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\GG 2014-02-07 21:46 - 2013-01-23 12:28 - 00000000 ____D () C:\Documents and Settings\NetworkService\Dane aplikacji 2014-02-06 22:15 - 2014-02-06 22:15 - 00003108 _____ () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\recently-used.xbel 2014-02-06 22:15 - 2014-02-06 22:12 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\gtk-2.0 2014-02-06 22:14 - 2014-02-06 22:14 - 02450541 _____ () C:\Documents and Settings\Ja\Pulpit\Bez nazwy.xcf 2014-02-06 22:14 - 2014-02-06 22:14 - 02450541 _____ () C:\Documents and Settings\Ja\Moje dokumenty\Bez nazwy.xcf 2014-02-06 22:14 - 2014-02-06 22:14 - 00000000 ____D () C:\Documents and Settings\Ja\.thumbnails 2014-02-06 22:14 - 2013-01-23 12:29 - 00000000 ___RD () C:\Documents and Settings\Ja\Moje dokumenty 2014-02-06 22:14 - 2013-01-23 12:29 - 00000000 ____D () C:\Documents and Settings\Ja 2014-02-06 21:55 - 2014-02-06 21:51 - 00000000 ____D () C:\Documents and Settings\Ja\.gimp-2.8 2014-02-06 21:51 - 2014-02-06 21:51 - 00000736 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\GIMP 2.lnk 2014-02-06 21:51 - 2014-02-06 21:51 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\gegl-0.2 2014-02-06 21:51 - 2014-02-06 21:48 - 00000000 ____D () C:\Program Files\GIMP 2 2014-02-06 21:46 - 2014-02-06 21:46 - 00000043 _____ () C:\Documents and Settings\Ja\Dane aplikacji\WB.CFG 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Program Files\SaveSenseLive 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\SaveSenseLive 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\SaveSense 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Documents and Settings\Ja\Menu Start\Programy\SaveSense 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Documents and Settings\Ja\Dane aplikacji\SaveSense 2014-02-06 21:46 - 2014-02-06 21:46 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\SaveSenseLive 2014-02-06 21:46 - 2013-01-23 12:29 - 00000000 __RHD () C:\Documents and Settings\Ja\Dane aplikacji 2014-02-06 16:46 - 2013-01-26 17:11 - 00000604 _____ () C:\WINDOWS\system32\settingsbkup.sfm 2014-02-06 16:46 - 2013-01-26 17:11 - 00000604 _____ () C:\WINDOWS\system32\settings.sfm 2014-02-06 16:17 - 2013-01-23 14:12 - 00002481 _____ () C:\Documents and Settings\All Users\Menu Start\Nowy dokument pakietu Microsoft Office.lnk 2014-02-05 20:29 - 2013-01-23 12:22 - 00000000 ____D () C:\WINDOWS\system32\DirectX 2014-02-05 18:04 - 2014-02-05 18:04 - 00000202 _____ () C:\Documents and Settings\Ja\Pulpit\Warframe.url 2014-02-05 18:04 - 2013-04-11 19:47 - 00000000 ____D () C:\Documents and Settings\Ja\Menu Start\Programy\Steam 2014-02-05 15:49 - 2013-04-12 21:21 - 00282104 _____ () C:\WINDOWS\system32\PnkBstrB.ex0 2014-02-05 15:38 - 2013-12-21 20:37 - 00000000 ____D () C:\Documents and Settings\Ja\Moje dokumenty\Battlefield Play4Free 2014-02-05 15:03 - 2014-02-05 15:03 - 00000000 ____D () C:\Program Files\LogMeIn Hamachi 2014-02-05 15:03 - 2014-02-05 15:03 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\LogMeIn Hamachi 2014-02-04 23:17 - 2014-02-04 23:17 - 00000000 ____D () C:\Program Files\Common Files\INCA Shared 2014-02-03 22:17 - 2014-02-03 22:03 - 00000629 _____ () C:\Documents and Settings\Ja\Pulpit\Opis Akwarium.txt 2014-02-03 22:14 - 2014-02-03 21:56 - 00000124 _____ () C:\Documents and Settings\Ja\Pulpit\Akfarium.txt 2014-02-01 01:55 - 2014-02-01 01:55 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\EdgeOfReality 2014-02-01 01:24 - 2014-02-01 01:24 - 00000202 _____ () C:\Documents and Settings\Ja\Pulpit\Loadout.url 2014-01-29 15:37 - 2014-01-14 21:27 - 00000000 _____ () C:\dfu.log 2014-01-29 15:37 - 2014-01-14 21:26 - 00000000 ____D () C:\Documents and Settings\Ja\Moje dokumenty\Gameforge Live 2014-01-29 15:37 - 2014-01-14 21:26 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Gameforge Live 2014-01-28 15:46 - 2014-01-27 23:56 - 00000000 ____D () C:\Program Files\Counter Strike 1.6 v23.1 [PL] [Fps Booster] 2014-01-27 23:58 - 2014-01-27 23:58 - 00001893 _____ () C:\Documents and Settings\All Users\Pulpit\Counter Strike 1.6 v23.1 [PL].lnk 2014-01-27 23:58 - 2014-01-27 23:58 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Counter Strike 1.6 v23.1 [PL] [Fps Booster] 2014-01-27 20:39 - 2010-01-21 23:47 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl 2014-01-26 18:05 - 2014-01-07 20:19 - 00000234 _____ () C:\Documents and Settings\Ja\Pulpit\nevowi65.txt 2014-01-25 21:33 - 2013-09-03 16:23 - 00000929 _____ () C:\WINDOWS\setupact.log 2014-01-25 14:45 - 2014-02-09 15:18 - 06516528 _____ () C:\Documents and Settings\Ja\Pulpit\huzuni.jar 2014-01-25 13:55 - 2014-01-25 13:49 - 00000028 _____ () C:\Documents and Settings\Ja\Pulpit\Obliczenia.txt 2014-01-25 13:44 - 2014-01-25 13:44 - 00000157 _____ () C:\Documents and Settings\Ja\Pulpit\WD 1 TB, 64 MB, 7200 obr.-min, 3.5-, SATA3 - WD10EZEX - Dyski twarde do PC - SATA na Arest.pl.url 2014-01-25 13:36 - 2014-01-25 13:36 - 00000145 _____ () C:\Documents and Settings\Ja\Pulpit\DDR3 KINGSTON - 2 GB - 1600, CL9, HyperX Blu. - Pamięci RAM DDR 3 KINGSTON na Arest.pl.url 2014-01-25 13:25 - 2014-01-25 13:25 - 00000163 _____ () C:\Documents and Settings\Ja\Pulpit\MSI FM2-A75MA-E35 - m-ATX, A75, 2x DDR3, 1x PCI-E 16x, RAID, VGA, DVI, HDMI, S-FM2 - Płyty główne - AMD Socket FM2 na Arest.pl.url 2014-01-25 13:08 - 2014-01-25 13:08 - 00000107 _____ () C:\Documents and Settings\Ja\Pulpit\Procesor AMD APU A10 5800K @4.2GHz Łódź +FARCRY3! (3866867089) - Allegro.pl - Więcej niż aukcje..url 2014-01-24 16:29 - 2013-08-28 19:55 - 00010165 _____ () C:\WINDOWS\wmsetup.log 2014-01-20 23:01 - 2014-01-20 23:01 - 00000000 ____D () C:\Documents and Settings\Ja\Pulpit\Nowy folder (2) 2014-01-19 22:32 - 2014-01-19 22:32 - 00000363 _____ () C:\Documents and Settings\All Users\Pulpit\4Story.lnk 2014-01-19 22:32 - 2014-01-19 22:32 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\4Story_PL 2014-01-19 10:20 - 2013-04-12 13:55 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-01-18 00:27 - 2013-04-12 14:00 - 00120152 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat 2014-01-18 00:27 - 2013-01-23 12:28 - 00000000 ___HD () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji 2014-01-17 23:03 - 2013-10-31 14:59 - 00002443 _____ () C:\Documents and Settings\All Users\Pulpit\GIGABYTE OC_GURU.lnk 2014-01-17 22:38 - 2014-01-16 17:05 - 00000000 ____D () C:\Documents and Settings\Ja\Menu Start\Programy\Ubisoft 2014-01-17 22:38 - 2013-04-12 14:32 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Deployment 2014-01-17 22:35 - 2013-09-02 17:43 - 00015691 _____ () C:\WINDOWS\spupdsvc.log 2014-01-17 22:35 - 2013-01-23 12:31 - 00044256 _____ () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2014-01-17 22:34 - 2013-01-23 13:05 - 00194568 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-01-17 22:32 - 2013-04-12 13:59 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-01-17 22:31 - 2013-01-23 13:12 - 01042454 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-01-17 22:31 - 2010-01-21 23:47 - 00490284 _____ () C:\WINDOWS\system32\perfh015.dat 2014-01-17 22:31 - 2010-01-21 23:47 - 00083660 _____ () C:\WINDOWS\system32\perfc015.dat 2014-01-17 22:30 - 2013-12-14 10:11 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Mobogenie 2014-01-17 22:30 - 2013-12-14 10:10 - 00000000 ____D () C:\Program Files\Mobogenie 2014-01-17 22:25 - 2013-12-14 10:11 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\genienext 2014-01-17 22:13 - 2013-01-23 12:59 - 00000000 ____D () C:\WINDOWS\Help 2014-01-17 22:12 - 2013-09-02 17:41 - 00025662 _____ () C:\WINDOWS\ie8.log 2014-01-17 22:12 - 2013-09-02 17:40 - 00062815 _____ () C:\WINDOWS\ie8_main.log 2014-01-17 22:11 - 2013-09-02 17:42 - 00004449 _____ () C:\WINDOWS\updspapi.log 2014-01-17 22:09 - 2014-01-17 22:09 - 00000000 ____D () C:\Documents and Settings\Ja\Dane aplikacji\0F1F1C2Y1H1P1C0I0T 2014-01-17 09:16 - 2014-01-20 17:41 - 00055360 _____ (NetFilterSDK.com) C:\WINDOWS\system32\Drivers\tnetfilter2.sys 2014-01-16 20:42 - 2013-04-12 21:21 - 00138904 _____ () C:\Documents and Settings\Ja\Dane aplikacji\PnkBstrK.sys 2014-01-16 20:42 - 2013-04-12 21:21 - 00076888 _____ () C:\WINDOWS\system32\PnkBstrA.exe 2014-01-16 17:05 - 2014-01-16 17:05 - 00000332 _____ () C:\Documents and Settings\Ja\Pulpit\Ghost Recon Online (EU).appref-ms 2014-01-15 23:29 - 2014-01-15 23:29 - 00094208 _____ () C:\WINDOWS\Minidump\Mini011514-01.dmp 2014-01-15 23:29 - 2013-02-23 11:30 - 00000000 ____D () C:\WINDOWS\Minidump 2014-01-15 18:28 - 2014-01-15 18:28 - 00000000 ____D () C:\Documents and Settings\Ja\Dane aplikacji\Kalydo 2014-01-14 21:27 - 2014-01-14 21:27 - 00000565 _____ () C:\Documents and Settings\All Users\Pulpit\S.K.I.L.L. - Special Force 2.lnk 2014-01-14 21:26 - 2014-01-14 21:26 - 00000404 _____ () C:\Documents and Settings\All Users\Pulpit\Gameforge Live.lnk 2014-01-14 21:26 - 2014-01-14 21:26 - 00000000 ____D () C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Gameforge4d Files to move or delete: ==================== C:\Windows\Tasks\At1.job ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe [2010-01-21 23:47] - [2010-01-21 23:47] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\WINDOWS\system32\winlogon.exe [2010-01-21 23:47] - [2010-01-21 23:47] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\WINDOWS\system32\svchost.exe [2010-01-21 23:47] - [2010-01-21 23:47] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\WINDOWS\system32\services.exe [2010-01-21 23:47] - [2010-01-21 23:47] - 0111104 ____A (Microsoft Corporation) 8816e60bf654353e8e0d35ed98875445 C:\WINDOWS\system32\User32.dll [2010-01-21 23:47] - [2010-01-21 23:47] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\WINDOWS\system32\userinit.exe [2010-01-21 23:47] - [2010-01-21 23:47] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\WINDOWS\system32\rpcss.dll [2010-01-21 23:47] - [2010-01-21 23:47] - 0401408 ____A (Microsoft Corporation) c9e5ac78d9a00b1de8ce2ad1bdde7e42 ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected. C:\WINDOWS\system32\Drivers\volsnap.sys [2010-01-21 23:47] - [2010-01-21 23:47] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================